Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
EC-Council logo

EC-CouncilDevSecOps Essentials

Domain 4Objective 5

Application Assessments and Penetration Testing DSE Practice Questions (Page 5)

Part of the DevSecOps Pipelines and CI/CD Security domain, which makes up ~18% of our current practice bank. EC-Council does not publish an official question count, but from its 120-minute exam (~50–80 total, ~9–14 in this domain), expect 2–3 from this objective — we provide 52 practice questions to prepare you well beyond it. (estimate)

52questions here
11free pages
10concepts

Questions 21–25

  1. 21foundation · easy

    What is a key characteristic of an effective security assessment report?

    Select an answer first
  2. 22expert · hard

    A security team is integrating penetration testing into a CI/CD pipeline for a critical financial application. They have a limited budget and cannot afford manual pen tests on every build. They also need to comply with a regulation that requires an annual full-scope pen test. What is the most cost-effective strategy that still meets compliance?

    Select an answer first
  3. 23application · medium

    A company is planning to conduct a security assessment of their web application. They want to identify vulnerabilities in the source code and also test the running application for issues like misconfigurations. Which combination of assessment types should they use?

    Select an answer first
  4. 24foundation · easy

    Which of the following is a typical output of an SCA scan?

    Select an answer first
  5. 25foundation · easy

    What is the purpose of orchestrating the outputs of multiple security testing tools?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “DSE” is a trademark of its owner, used for identification only.